From 64f8b2eb5870664fca06aa060f2f50af358ced55 Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Sun, 21 Jul 2024 06:36:22 -0400 Subject: [PATCH] Revert "no longer disable Intel ME related kernel modules" This reverts commit 6157e328f40a7f3780208489b1ffecef8e6d738a. https://www.kicksecure.com/wiki/Out-of-band_Management_Technology#Intel_ME_Kernel_Modules https://github.com/Kicksecure/security-misc/issues/239 --- etc/modprobe.d/30_security-misc_disable.conf | 24 ++++++++++---------- 1 file changed, 12 insertions(+), 12 deletions(-) diff --git a/etc/modprobe.d/30_security-misc_disable.conf b/etc/modprobe.d/30_security-misc_disable.conf index d2408af..b6cfcbe 100644 --- a/etc/modprobe.d/30_security-misc_disable.conf +++ b/etc/modprobe.d/30_security-misc_disable.conf @@ -92,18 +92,18 @@ install gnss-usb /usr/bin/disabled-gps-by-security-misc ## https://github.com/Kicksecure/security-misc/pull/236#issuecomment-2229092813 ## https://github.com/Kicksecure/security-misc/issues/239 ## -#install mei /usr/bin/disabled-intelme-by-security-misc -#install mei-gsc /usr/bin/disabled-intelme-by-security-misc -#install mei_gsc_proxy /usr/bin/disabled-intelme-by-security-misc -#install mei_hdcp /usr/bin/disabled-intelme-by-security-misc -#install mei-me /usr/bin/disabled-intelme-by-security-misc -#install mei_phy /usr/bin/disabled-intelme-by-security-misc -#install mei_pxp /usr/bin/disabled-intelme-by-security-misc -#install mei-txe /usr/bin/disabled-intelme-by-security-misc -#install mei-vsc /usr/bin/disabled-intelme-by-security-misc -#install mei-vsc-hw /usr/bin/disabled-intelme-by-security-misc -#install mei_wdt /usr/bin/disabled-intelme-by-security-misc -#install microread_mei /usr/bin/disabled-intelme-by-security-misc +install mei /usr/bin/disabled-intelme-by-security-misc +install mei-gsc /usr/bin/disabled-intelme-by-security-misc +install mei_gsc_proxy /usr/bin/disabled-intelme-by-security-misc +install mei_hdcp /usr/bin/disabled-intelme-by-security-misc +install mei-me /usr/bin/disabled-intelme-by-security-misc +install mei_phy /usr/bin/disabled-intelme-by-security-misc +install mei_pxp /usr/bin/disabled-intelme-by-security-misc +install mei-txe /usr/bin/disabled-intelme-by-security-misc +install mei-vsc /usr/bin/disabled-intelme-by-security-misc +install mei-vsc-hw /usr/bin/disabled-intelme-by-security-misc +install mei_wdt /usr/bin/disabled-intelme-by-security-misc +install microread_mei /usr/bin/disabled-intelme-by-security-misc ## Intel Platform Monitoring Technology Telemetry (PMT): ## Disable some functionality of the Intel PMT components.